Skip to content

Commit a1fe695

Browse files
author
karmaking
committed
CSRF/CORS WIP
1 parent c21fe5d commit a1fe695

File tree

2 files changed

+4
-4
lines changed

2 files changed

+4
-4
lines changed

apimanager/apimanager/settings.py

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -44,7 +44,7 @@
4444
'django.contrib.sessions',
4545
'django.contrib.messages',
4646
'django.contrib.staticfiles',
47-
'corsheaders',
47+
#'corsheaders',
4848
'bootstrap',
4949
'bootstrap_datepicker_plus',
5050
'mathfilters',
@@ -87,7 +87,7 @@
8787
'django.contrib.messages.middleware.MessageMiddleware',
8888
'django.middleware.clickjacking.XFrameOptionsMiddleware',
8989
# 'django.middleware.cache.FetchFromCacheMiddleware',
90-
'corsheaders.middleware.CorsMiddleware'
90+
#'corsheaders.middleware.CorsMiddleware'
9191
]
9292

9393
#cache the view page, we set 60s = 1m,
@@ -284,7 +284,7 @@
284284
CSRF_COOKIE_HTTPONLY = True
285285
CSRF_COOKIE_SECURE = True
286286

287-
SECURE_PROXY_SSL_HEADER = ('HTTP_X_FORWARDED_PROTO', 'https')
287+
#SECURE_PROXY_SSL_HEADER = ('HTTP_X_FORWARDED_PROTO', 'https')
288288

289289
# Paths on API_HOST to OAuth
290290
OAUTH_TOKEN_PATH = '/oauth/initiate'

requirements.txt

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -11,4 +11,4 @@ django-bootstrap-datepicker-plus
1111
django-mathfilters
1212
django-bootstrap
1313
django-csp
14-
django-cors-headers
14+
#django-cors-headers

0 commit comments

Comments
 (0)